Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-50237

Опубликовано: 28 июл. 2025
Источник: debian

Описание

The ed25519-dalek crate before 2 for Rust allows a double public key signing function oracle attack. The Keypair implementation leads to a simple computation for extracting a private key.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
rust-curve25519-daleknot-affectedpackage

Примечания

  • https://rustsec.org/advisories/RUSTSEC-2022-0093.html

  • https://github.com/MystenLabs/ed25519-unsafe-libs

Связанные уязвимости

CVSS3: 5.9
ubuntu
6 месяцев назад

The ed25519-dalek crate before 2 for Rust allows a double public key signing function oracle attack. The Keypair implementation leads to a simple computation for extracting a private key.

CVSS3: 5.9
redhat
6 месяцев назад

The ed25519-dalek crate before 2 for Rust allows a double public key signing function oracle attack. The Keypair implementation leads to a simple computation for extracting a private key.

CVSS3: 5.9
nvd
6 месяцев назад

The ed25519-dalek crate before 2 for Rust allows a double public key signing function oracle attack. The Keypair implementation leads to a simple computation for extracting a private key.

CVSS3: 5.9
github
больше 2 лет назад

`ed25519-dalek` Double Public Key Signing Function Oracle Attack